Where does your technology control environment really stand?
Score your organisation against the frameworks your regulator actually uses — and get an instant maturity position, framework-by-framework, in about 10 minutes. No cost, no software, your answers stay in your browser.
Choose your assessment
Each track scores the same 14 control domains through a different regulatory lens.
Container & Cloud Security (Docker & Kubernetes)
A specialist 59-control assessment across 12 domains mapped to NIST SP 800-190, ISO/IEC 27001:2022 and CIS Benchmarks — run as a facilitated engagement.
Tell us about your organisation
Takes 30 seconds. Your result is tailored to your sector and size.
This is a self-assessment positioning tool, not an audit opinion. Framework references (SASRA, CBK, IRA, ISO/IEC 27001:2022, SOC 2, NIST CSF, PCI-DSS, IEC 62443, the Digital Health Act, GEA ICT Standards, CUE standards and the Kenya Data Protection Act, 2019) are used to indicate control coverage; no specific clause numbers are implied. Independently validated results are provided by a facilitated assessment or full IT audit by Sentinel Assurance Partners Ltd.
For each control, pick the level that best matches reality today — 0 = nothing in place, 3 = documented & consistent, 5 = optimised & continuously improved. Answer honestly; gaps are exactly what this is meant to surface. You can score what you know and see results at any point.
Framework position
Average maturity across the controls mapped to each framework.
Maturity by domain
Sorted lowest first — your biggest exposures sit at the top.
Your top exposures
The domains where control maturity is weakest right now.
Recommended engagement
Turn this snapshot into validated assurance
Book a free 20-minute risk review. We’ll walk through your result and pinpoint the single fix with the biggest impact on your position — then scope an independent, framework-mapped engagement.


